SHA256: 9e44c764a9d3681f64f2dfc0bf62454ff463313e193d70614b0d7505204f9170 File name: xigua.exe Detection ratio: 34 / 56 Analysis date: 2016-10-26 23:29:08 UTC ( 0 minutes ago ) Antivirus Result Update ALYac Adware.GenericKD.3388535 20161026 AVG Generic_c.ERT 20161026 AVware Trojan.Win32.Generic!BT 20161027 Ad-Aware Adware.GenericKD.3388535 20161026 AegisLab Adware.Generickd!c 20161026 Antiy-AVL Trojan/Generic.ASMalwNS.54D8 20161026 Arcabit Adware.Generic.D33B477 20161026 Avira (no cloud) TR/AD.Plorexie.sourk 20161026 BitDefender Adware.GenericKD.3388535 20161027 CAT-QuickHeal Browsermodifier.Plorexie 20161026 Cyren W32/Plorexie.A.gen!Eldorado 20161027 DrWeb Trojan.Click3.22642 20161027 ESET-NOD32 Win32/StartPage.OVK 20161026 2016-10-25 22:56:18.223887 IP 192.168.1.102.60948 > 58.215.177.195.80: Flags [P.], seq 0:295, ack 1, win 256, length 295: HTTP: GET /618171115/xigua.exe HTTP/1.1 E..Op.@….”…f:……P…h..”.P…….GET /618171115/xigua.exe HTTP/1.1 Accept: application/x-shockwave-flash, image/gif, image/jpeg, image/pjpeg, */* Accept-Language: en-us User-Agent: Mozilla/4.0 (compatible; MSIE 8.0; […]